Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-3684
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-3684

Description:
Multiple SQL injection vulnerabilities in Unobtrusive Ajax Star Rating Bar before 1.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) q and (2) t parameters in (a) db.php and (b) rpc.php.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/35328

SAID
  Secunia Advisory: SA25985

OSVDB
  35933
  35934

MISC
  http://www.cirt.net/advisories/unobtrusive_ajax_star_rating.shtml

BID
  24840


Return to the previous page.